fix: Upgrade js-yaml to address CVE-2025-64718 (#11650)
### Description
Upgrade js-yaml to address CVE-2025-64718 (moderate security
vulnerability)
### Testing Instructions
CI
<sub>CLOSES TURBO-5168</sub>
<sub>CLOSES TURBO-5167</sub>
Co-authored-by: Anthony Shew <anthony.shew@vercel.com>